12.07.2015 Views

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

WSM User Guide - WatchGuard Technologies

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Adding Devices to the Management ServerNoteIf the Firebox SOHO you want to manage has a static IP address on its external interface, you can stophere. Click Submit to save your configuration to the SOHO. You can now add the device to yourManagement Server configuration. When you add this SOHO to the Management Server configuration,the Management Server automatically connects to the static IP address and configures the SOHO as amanaged Firebox client.If the SOHO you want to manage has a dynamic IP address, go on to step 7.7 Select the Enable Managed VPN check box.8 From the Configuration Mode drop-down list, select SOHO.9 In the DVCP Server Address text box, type the IP address of the Management Server if it has apublic IP address. If the Management Server has a private IP address, type the public IP address ofthe Firebox that protects the Management Server.The Firebox that protects the Management Server automatically monitors all ports used by the Management Serverand will forward any connection on these ports to the configured Management Server. No special configuration isnecessary for this to occur.10 Type the Client Name to give your Firebox SOHO.This name is case-sensitive and must match the name you use for the Edge when you add it to the ManagementServer configuration.11 Type the Shared Key.The shared key is used to encrypt the connection between the Management Server and the Firebox SOHO. Thisshared key must be the same on the SOHO and the Management Server. You must get the shared key from yourManagement Server administrator.12 Click Submit.When you save the configuration to the Firebox SOHO, the SOHO is enabled as a managed client. The managedSOHO client tries to connect to the IP address of the Management Server. Management connections are allowedfrom the Management Server to this managed SOHO client.Adding Devices to the Management ServerYou can use the Management Server to configure and manage VPN tunnels between Firebox® devices,including Firebox III and Firebox X Core devices that use WFS appliance software, Firebox X devices thatuse Fireware® appliance software, Firebox X Edge devices, and Firebox SOHO devices.A device with a dynamic IP address must also be configured as a Managed Client from Policy Managerfor the device. See the previous section for these instructions.If your device has multiple external interfaces, do not change the interface configuration after you addthe device to the Management Server.NoteWith the Management Server, you can also deploy, manage, and monitor Firebox X Edge devices. Seethe “Managing the Firebox X Edge and Firebox SOHO” chapter for more information.1 In <strong>WatchGuard</strong>® System Manager, connect to the Management Server.Select File > Connect to Server, or select the Device Status tab.OrRight-click anywhere in the window and select Connect to > Server.2 Type or select the IP address of the Management Server, type the passphrase, and click Login.3 Click the Device Management tab.<strong>User</strong> <strong>Guide</strong> 213

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!